Publication detail

Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis

OUJEZSKÝ, V. HORVÁTH, T. ŠKORPIL, V.

Original Title

Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis

Czech Title

Modelování délky životnosti provozu Botnet C&C z NetFlow zpráv pomocí analýzy přežití

English Title

Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis

Type

conference paper

Language

en

Original Abstract

In this paper we present a time behavioral analysis of a simulated botnet network traffic, collected and discovered from NetFlow messages. More specifically said – lifespans. The technique, which we used, is focused on to model command and control communication in a botnet network. The lifespan of this referred traffic is modeled by lifelines using Python language.

Czech abstract

V tomto článku prezentujeme analýzu časového chování simulovaného botnetového provozu, který byl analyzován pomocí NetFlow zpráv. Více konkrétněji řečeno - délku jeho životnosti. Technika, kterou jsme použili, je zaměřena na model komunikace v botnetových sítích zvané „command and control”. Životnost uvedeného provozu je modelována pomocí jazyka Python s využitím implementace balíčku„lifelines”.

English abstract

In this paper we present a time behavioral analysis of a simulated botnet network traffic, collected and discovered from NetFlow messages. More specifically said – lifespans. The technique, which we used, is focused on to model command and control communication in a botnet network. The lifespan of this referred traffic is modeled by lifelines using Python language.

Keywords

Botnet; Lifespans; Modeling; NetFlow; Survival Analysis;

Released

27.06.2016

Location

Vienna, Austria

ISBN

978-1-5090-1287-9

Book

Proceedings of the 39th International Conference on Telecommunication and Signal Processing, TSP 2016

Pages from

50

Pages to

55

Pages count

6

BibTex


@inproceedings{BUT126591,
  author="Václav {Oujezský} and Tomáš {Horváth} and Vladislav {Škorpil}",
  title="Modeling Botnet C&C Traffic Lifespans from NetFlow Using Survival Analysis",
  annote="In this paper we present a time behavioral analysis of a simulated botnet network traffic, collected and discovered from NetFlow messages. More specifically said – lifespans. The technique, which we used, is focused on to model command and control communication in a botnet network. The lifespan of this referred traffic is modeled by lifelines using Python language.",
  booktitle="Proceedings of the 39th International Conference on Telecommunication and Signal Processing, TSP 2016",
  chapter="126591",
  howpublished="print",
  year="2016",
  month="june",
  pages="50--55",
  type="conference paper"
}